REPORTS
PROGRAMS
PUBLISHERS
Top10 publishers:
b'bobrov'
117
b'sp1d3rs'
86
b'geeknik'
80
b'linkks'
75
b'jobert'
70
b'someonenobbd'
62
b'nyymi'
58
b'ooooooo_q'
52
b'guido'
50
b'haxta4ok00'
49
Now on Twitter
the unofficial
HackerOne
disclosure timeline.
X
b'Glovo'
disclosed a bug submitted by
b'cmuppin'
b'Getting a free delivery by singing up from "admin_@glovoapp.com"'
11 Jul 2022
b'Glovo'
disclosed a bug submitted by
b'battle_angel'
b'Server Side Template Injection on Name parameter during Sign Up process'
11 Jul 2022
b'Vanilla'
disclosed a bug submitted by
b'malek'
b'Homograph attack bypass cause redirection'
10 Jul 2022
b'Radancy'
disclosed a bug submitted by
b'dk4trin'
b'Blind SSRF at packagist.maximum.nl'
10 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'DoS via lua_read_body() [zhbug_httpd_94]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'ricterz'
b'Apache HTTP Server: mod_proxy_ajp: Possible request smuggling'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds via ap_rwrite() [zhbug_httpd_47.2]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds in mod_isapi.c [zhbug_httpd_41]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Controllable read beyond bounds in lua_websocket_readbytes() [zhbug_httpd_126]'
09 Jul 2022
b'Internet Bug Bounty'
disclosed a bug submitted by
b'tdp3kel9g'
b'Read beyond bounds in ap_strcmp_match() [zhbug_httpd_47.7]'
09 Jul 2022
b'Hyperledger'
disclosed a bug submitted by
b'dusty_wormwood'
b'Unauthorized packages modification or secrets exfiltration via GitHub actions'
08 Jul 2022
b'Reddit'
disclosed a bug submitted by
b'kratul'
b'Open Redirect through POST Request in www.redditinc.com'
08 Jul 2022
b'Glovo'
disclosed a bug submitted by
b'mehdisadir'
b'Exposed valid AWS, Mysql, Sendgrid and other secrets'
08 Jul 2022
b'TikTok'
disclosed a bug submitted by
b'rioncool22'
b'Clickjacking Vulnerability In Whole Page Ads Tiktok'
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due to Flawed Parsing of Transfer-Encoding '
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due To Improper Delimiting of Header Fields'
07 Jul 2022
b'Node.js'
disclosed a bug submitted by
b'zeyu2001'
b'HTTP Request Smuggling Due to Incorrect Parsing of Multi-line Transfer-Encoding'
07 Jul 2022
b'Omise'
disclosed a bug submitted by
b'sachinrajput'
b'Brute force of a current password on a disable 2fa leads to guess password and disable 2fa.'
07 Jul 2022
b'Hyperledger'
disclosed a bug submitted by
b'fatal0'
b'Remote denial of service in HyperLedger Fabric'
07 Jul 2022
b'SKALE Network'
disclosed a bug submitted by
b'voiddy'
b'Stack Buffer Overflow via `gmp_sprintf`in `BLSSignature` and `BLSSigShare`'
07 Jul 2022
1
...
113
114
115
116
117
...
730
BY DENIS WERNER - @NOBBD -
IMPRESSUM